Corporate Security Director – Data Protection

Job title:

Corporate Security Director – Data Protection

Company:

Cognizant

Job description

Description of RoleCognizant is seeking a Director, Data Protection to oversee the Corporate Security’s data protection strategy, regulatory compliance, training of staff, communication with regulators, and understanding relevant data processing risks across internal systems.The candidate will possess expert knowledge of data protection law and practices, along with an understanding of Cognizant’s infrastructure, technology, and organizational structure. In this role, a risk-based approach to data protection should be taken and they will be the primary point of contact for Corporate Security with regard to potential complaints, queries, notices, and other notification requirements. Overall, an ideal candidate will possess a combination of legal knowledge, technical background, and communication skills, along with a strong sense of credibility, integrity, and independence.ResponsibilitiesGeneral Compliance· Inform and advise Corporate Security, including staff who process personal data, of their obligations as per data protection provisions. The candidate will provide recommendations about the interpretation and application of all relevant data protection rules.· Provide support to GDPR Program and other local data protection provisions and policies in relation to the protection of personal data.· Inform Corporate Security of any failure to comply with the applicable data protection rules.· Conduct data audits to ensure compliance and address potential issues proactively.· Oversee implementation of compliance tools.· Develop process to conduct due diligence to ensure information shared with partners/suppliers is in alignment with all requirements, protocols, and codes pertaining to personal data.· Maintain comprehensive records for all data processing activities conducted by the company (such as with a Record of Processing), including the purpose of all processing activities, which may be shared on request.Documentation· Develop, review, and update new and existing documentation, including privacy policies, security policies, cookie policies, retention schedule, subject access requests, and others.· Develop and integrate incident, breach, and data loss management and notification processes into the general incident response process.· Author technical data protection standards relating to cryptography methods and encryption solutions as needed.Risk· Maintain a risk assessment process for personal data, including providing advice on performing data protection impact assessments (DPIA) and monitoring continued performance.· Report into existing Corporate Security Risk Register of processing operations within Cognizant and notify managers regarding the specific risks, as necessary.· Serve as the SME and “go-to” individual for all data protection, masking, encryption, obfuscation, tokenization efforts across Cognizant developed applications, services, and environments.Communication· Act as the point of contact between regulators.· Facilitate communications with data subjects regarding the use of their data, their rights to have their personal data erased, and the measures that Cognizant has implemented to protect their personal data.· Handle queries, complaints, and other communication on request by the controller, vendors, customers, and other person(s).Position RequirementsFormal Education and Certifications· University degree in computer science, computer privacy/law, or computer engineering, and/or equivalent work experience in privacy law, auditing, or related.· Certifications in privacy, such as Certified Information Privacy Professional (CIPP/E, CIPP/US, or CIPP/C), Certified Information Privacy Manager (CIPM), or similar.· Industry Certifications such as a Certified Information Systems Security Professional (CISSP) would be an asset.Knowledge and Experience· Proven expert knowledge of data protection law and practices· Strong knowledge of privacy laws, security frameworks and compliance regulations globally (i.e. GDPR, NIST 800, ISO/IEC 27002, HI{AA, PCI, SOX, HITRUST)· Experience interpreting complicated and/or ambiguous regulatory requirements into understandable and actionable requirements for the organization and staff.· Deep understanding of encryption methods across applications and supporting application infrastructure (i.e. databases).· Knowledge of encryption technologies across private and public cloud as well as common vendors who provide encryption, tokenization and/or data protection solutions.· Direct experience with building, and leading a global data protection discipline and team from the ground up.· Expertise with encryption SDK architectures and implementation of such SDK’s within applications.· Familiarity with common encryption algorithms and key management protocols and practice· Experience providing guidance on privacy and security risk assessments, countermeasures, and data protection impact assessments.· Well versed in the discipline of Identity & Access Management with specific expertise focused on access controls· Demonstrated leadership skills, project management experience, and delegation skills, while working with a diverse set of stakeholders and varied projects.· Experience working with board-level executives and other experienced personnel who may or may not understand the complexities of data protection.· Experience in developing legal and technical training, as well as awareness distributing material, to ensure staff and data subjects are aware of their rights and responsibilities.· Demonstrated diplomatic and negotiation skills to deal with DPAs and other regulators.· Experience implementing and managing compliance tools.· Strong understanding of computer systems, databases, and how personal data is stored and processed.· Excellent understanding of Cognizant’s goals and objectives.

Expected salary

Location

Budapest

Job date

Wed, 04 Dec 2024 23:08:13 GMT

To help us track our recruitment effort, please indicate in your email/cover letter where (vacanciesin.eu) you saw this job posting.

yonnetim

Published by
yonnetim
Tags: local

Recent Posts

Float Legal Secretary

Job title: Float Legal Secretary Company: Future Prospects Job description Float Legal Secretary Alconbury, Full…

3 minutes ago

Commissioning Lead Substations

Job title: Commissioning Lead Substations Company: Microsoft Job description The CO+I Commissioning team is responsible…

9 minutes ago

Postdoctoral researcher in heat-health early warning systems

Job title: Postdoctoral researcher in heat-health early warning systems Company: Job description Offer DescriptionThe Barcelona…

15 minutes ago

Sr Apple Purchasing Operation Specialist

Job title: Sr Apple Purchasing Operation Specialist Company: Vodafone Job description HEADER section. 1 of…

19 minutes ago

TECHNOLOG – KONSTRUKTOR / PROJECT MANAGER

Job title: TECHNOLOG - KONSTRUKTOR / PROJECT MANAGER Company: ATS Display Sp. z o.o. Job…

22 minutes ago

Senior Software Manager .net exp (H/F/D)

Job title: Senior Software Manager .net exp (H/F/D) Company: Samsic Emploi Job description Proposé parDescription…

28 minutes ago
If you dont see Apply Button. Please use Non-Amp Version